← Back

CVE-2020-8286

nvd nist
Published: Dec 14, 2020Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

curl 7.41.0 through 7.73.0 is vulnerable to an improper check for certificate revocation due to insufficient verification of the OCSP response.

Affected (37)

Products: Haxx: Libcurl · Fedoraproject: Fedora · Debian: Debian Linux · +5 more
Show all products
1 product
Libcurl
1 product
Fedora
1 product
Debian Linux
5 products
Clustered Data Ontap
Hci Management Node
Solidfire
Hci Bootstrap Os
Hci Storage Node Firmware
2 products
Mac Os X
Macos
2 products
Simatic Tim 1531 Irc Firmware
4 products
Essbase
Peoplesoft Enterprise Peopletools
1 product
Universal Forwarder
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 7.41.0 to 7.74.0
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Fedoraproject
Version 32
Version 33
Configuration C
2 vulnerable
Vulnerable SoftwareAffected Versions
Debian
Version 10.0
Version 9.0
Configuration D
3 vulnerable
Vulnerable SoftwareAffected Versions
All versions
All versions
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
Hci Compute Node
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
Hci Storage Node
All versions
Configuration G
18 vulnerable
Vulnerable SoftwareAffected Versions
Apple
Before 10.14.6
From 10.15 to 10.15.7
Version 10.14.6
Version 10.14.6 security_update_2019-001
Version 10.14.6 security_update_2019-002
Version 10.14.6 security_update_2020-001
Version 10.14.6 security_update_2020-002
Version 10.14.6 security_update_2020-003
Version 10.14.6 security_update_2020-004
Version 10.14.6 security_update_2020-005
Version 10.14.6 security_update_2020-006
Version 10.14.6 security_update_2020-007
Version 10.14.6 security_update_2021-001
Version 10.15.7
Version 10.15.7 security_update_2020-001
Version 10.15.7 security_update_2021-001
Version 10.15.7 supplemental_update
From 11.0 to 11.3
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 2.2
Running on/withPlatform Versions
Siemens
Simatic Tim 1531 Irc
All versions
Configuration I
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 1.0.1.1
Configuration J
4 vulnerable
Configuration K
3 vulnerable
Vulnerable SoftwareAffected Versions
Splunk
From 8.2.0 to 8.2.12
From 9.0.0 to 9.0.6
Version 9.1.0

References (38)

Source: support@hackerone.com
Mailing ListThird Party Advisory
Source: support@hackerone.com
Mailing ListThird Party Advisory
Source: support@hackerone.com
Mailing ListThird Party Advisory
Source: support@hackerone.com
Third Party Advisory
Source: support@hackerone.com
PatchThird Party Advisory
Source: support@hackerone.com
Vendor Advisory
Source: support@hackerone.com
ExploitPatchThird Party Advisory
Source: support@hackerone.com
Mailing ListThird Party Advisory
Source: support@hackerone.com
Third Party Advisory
Source: support@hackerone.com
Third Party Advisory
Source: support@hackerone.com
Third Party Advisory
Source: support@hackerone.com
Third Party Advisory
Source: support@hackerone.com
Third Party Advisory
Source: support@hackerone.com
Third Party Advisory
Source: support@hackerone.com
Third Party Advisory
Source: support@hackerone.com
Third Party Advisory
Source: support@hackerone.com
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory

Timeline

No history available yet.